Introduction
At Moonbow Sailing, we are committed to protecting your privacy and personal data in accordance with the General Data Protection Regulation (GDPR). This Privacy Policy explains how we collect, use, store, and protect your information when you use our services, including our newsletter, website, and sailing experiences.
What Information We Collect
We collect the following types of information:
- Email address and first name when you subscribe to our newsletter
- Complete personal information during cruise registration (first name, last name, date of birth, phone, address)
- Identity document data (ID/passport number, expiry date, nationality) required by the charter company
- Information about sailing experience, dietary restrictions, and medical conditions
- Usage data when you browse our website
- Communication preferences and consent records with timestamps
How We Use Your Information
We use your information to:
- Send you newsletters about sailing adventures and exclusive offers
- Organize and conduct sailing cruises
- Provide necessary data to the charter company to prepare the yacht and ensure safety
- Provide customer support and respond to your inquiries
- Improve our services and website functionality
- Comply with legal obligations
Information Sharing
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- Charter companies – we provide personal data, identity document information, and details about dietary restrictions and medical conditions necessary for cruise organization and safety
- With service providers who help us operate our business (e.g., email service providers)
- When required by law or to protect our rights
- With your explicit consent
Data Protection & Encryption
We implement industry-standard security measures to protect your personal information. Sensitive data including your identity document number, date of birth, phone number, address, and medical information is encrypted using AES-256-GCM encryption before being stored in our database. Data is also encrypted in transit using TLS/SSL. Access to personal data is restricted to authorized personnel only, and all access is logged for security auditing purposes.
Your Rights Under GDPR
Under the General Data Protection Regulation, you have the following rights:
- Right of Access – Request a copy of all personal data we hold about you
- Right to Rectification – Request correction of inaccurate information
- Right to Erasure – Request deletion of your personal data ('right to be forgotten')
- Right to Data Portability – Receive your data in a machine-readable format
- Right to Object – Object to processing of your data for certain purposes
- Right to Withdraw Consent – Unsubscribe from our newsletter at any time
Cookies and Tracking
Our website may use cookies to improve your browsing experience. You can control cookie settings through your browser preferences.
Contact Us
If you have any questions about this Privacy Policy, how we handle your personal data, or wish to exercise your GDPR rights, please contact us at info@moonbow-sailing.com.